US and allies urge ‘careful adoption’ of AI agents

US and allies urge ‘careful adoption’ of AI agents

US and allies urge ‘careful adoption’ of AI agents

https://www.cybersecuritydive.com/news/ai-agents-security-guidance-australia-us/819076/

Publish Date: 2026-05-01 10:53:00

Source Domain: www.cybersecuritydive.com

The Australian and U.S. governments, along with other international partners, released guidance on Friday for safely deploying agentic AI systems.

The automation capabilities of AI agents create unique risks that can lead to “productivity losses, service disruption, privacy breaches or cybersecurity incidents,” the guidance document reads. “Organisations must therefore anticipate what could go wrong, assess how agentic AI risk scenarios might affect operations and establish ongoing visibility and assurance to maintain confidence in their agentic AI investments.”

Safely using AI agents means “never granting it broad or unrestricted access, especially to sensitive data or critical systems,” the document warns. Companies, it says, “should only use agentic AI for low-risk and non-sensitive tasks.”

The publication — co-issued by the Australian Signals Directorate, the U.S.’s Cybersecurity and Infrastructure Security Agency and National Security Agency and their British, Canadian and New Zealand counterparts — comes as businesses race to integrate AI tools into their workflows and increasingly embrace agentic AI for its ability to automate repetitive tasks.

Organizations evaluating agentic AI tools should understand the range of risks associated with them, the Western governments warned in their guidance document. AI agents are complex systems whose interconnected pieces create “systemic risks,” and they rely on large language models and external data sources that can introduce their own vulnerabilities, such as maliciously crafted web-search results enabling prompt-injection attacks.

“Every individual component in an agentic AI system widens the attack surface, exposing the system to additional avenues of exploitation,” the document says.

The immaturity of AI security standards and the difficulty of applying human-centric governance models to automated technologies also make it…

Source